
anteater
Anteater - CI/CD Gate Check Framework

Proof-of-concept exploit for CVE-2025-51482, demonstrating remote code execution via unsafe exec() usage and sandbox bypass in the Letta AI agent…

Kurukshetra - A framework for teaching secure coding by means of interactive problem solving.

(CVE-2017-9841) PHPUnit_eval-stdin_php Remote Code Execution

An easy-to-learn/use static analysis framework for Java and Android

Python source code auditing and static analysis on a large scale

Managing GitHub Advanced Security (GHAS) Controls at Scale

An Evaluation Agent for Detecting Misinformation and Knowledge Poisoning in Retrieval-Augmented Generation Systems.

IDA Pro plugin for filtering functions by assembly patterns, byte sequences, string/name references, and size constraints, with rule-based search and…

Staged static taint analysis framework for GitHub Actions workflows. Detects code injection vulnerabilities using taint-tracking and an impact…

MARA is a Mobile Application Reverse engineering and Analysis Framework. It is a toolkit that puts together commonly used mobile application reverse…

Spring Framework RCE exploit (CVE-2022-22965) with analysis code and educational walkthrough for understanding the vulnerability and exploitation…

Created after the disclosure of CVE-2022-22965 and CVE-2022-22963. Bash script that detects Spring Framework occurrences in your projects and…

Ghidra is a software reverse engineering (SRE) framework


Scala-based static analysis framework for Android and Java bytecode with flow analysis, decompilation, and native code analysis via symbolic…

Official code for the ISSTA 2026 paper: Is "Knowing It’s Malicious" Enough? Evaluating LLMs for Fine-Grained Malware Behavior Auditing

The code of VulTriage: Triple-Path Context Augmentation for LLM-Based Vulnerability Detection